|
284811
|
- |
|
vbtube
|
vbtube
|
Cross-site scripting (XSS) vulnerability in vBTube.php in vBTube 1.1 Beta allows remote attackers to inject arbitrary web script or HTML via the search parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2007-6141
|
2018-10-16 06:50 |
2007-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284812
|
- |
|
vu
|
case_manager
|
SQL injection vulnerability in default.asp (aka the Login Page) in VU Case Manager allows remote attackers to execute arbitrary SQL commands via the password parameter.
|
CWE-89
SQL Injection
|
CVE-2007-6143
|
2018-10-16 06:50 |
2007-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284813
|
- |
|
simplegallery
|
simplegallery
|
Cross-site scripting (XSS) vulnerability in index.php in SimpleGallery 0.1.3 allows remote attackers to inject arbitrary web script or HTML via the album parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2007-6157
|
2018-10-16 06:50 |
2007-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284814
|
- |
|
proverbs
|
proverbs_web_calendar
|
Multiple SQL injection vulnerabilities in caladmin.inc.php in Proverbs Web Calendar 1.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) loginname (aka Username) and (…
|
CWE-89
SQL Injection
|
CVE-2007-6158
|
2018-10-16 06:50 |
2007-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284815
|
- |
|
tilde
|
tilde_cms
|
SQL injection vulnerability in index.php in Tilde CMS 4.x and earlier allows remote attackers to execute arbitrary SQL commands via the aarstal parameter in a yeardetail action, a different vector th…
|
CWE-89
SQL Injection
|
CVE-2007-6159
|
2018-10-16 06:50 |
2007-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284816
|
- |
|
tilde
|
tilde_cms
|
Cross-site scripting (XSS) vulnerability in index.php in Tilde CMS 4.x and earlier allows remote attackers to inject arbitrary web script or HTML via the aarstal parameter in a yeardetail action.
|
CWE-79
Cross-site Scripting
|
CVE-2007-6160
|
2018-10-16 06:50 |
2007-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284817
|
- |
|
tilde
|
tilde_cms
|
index.php in Tilde CMS 4.x and earlier allows remote attackers to obtain sensitive information via a certain search parameter value in a search action, which reveals the path.
|
CWE-200
Information Exposure
|
CVE-2007-6161
|
2018-10-16 06:50 |
2007-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284818
|
- |
|
wsdeluxe
|
fmdeluxe
|
Cross-site scripting (XSS) vulnerability in index.php in FMDeluxe 2.1.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter in a category action.
|
CWE-79
Cross-site Scripting
|
CVE-2007-6162
|
2018-10-16 06:50 |
2007-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284819
|
- |
|
gouae
|
dwd_realty
|
SQL injection vulnerability in admin/index2.asp in GOUAE DWD Realty allows remote attackers to execute arbitrary SQL commands via the pword (aka Password) parameter. NOTE: some of these details are …
|
CWE-89
SQL Injection
|
CVE-2007-6163
|
2018-10-16 06:50 |
2007-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284820
|
- |
|
eurologon
|
eurologon_cms
|
Multiple SQL injection vulnerabilities in Eurologon CMS allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) reviews.php, (2) links.php and (3) articles.php.
|
CWE-89
SQL Injection
|
CVE-2007-6164
|
2018-10-16 06:50 |
2007-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|